Skip to content

TechMedia

Header Image
Author

wpmaster

811184 Posts

Featured

Posted byWpmaster
大規模対戦ACT『Warlander』PS5/XSX版最新情報を公開―新コンテンツ追加やゲーム改善をリリースに向けて開発中
Posted byWpmaster
サウナブームが到来!!「ととのう」を提供するべく新サウナ施設や様々なサウナグッズが登場 (マイライフニュース)
Posted byWpmaster
吉野家HDの24年2月期、営業益34%増 12年ぶり水準 (日本経済新聞)
Posted byWpmaster
【フォト】大規模反攻、夏にずれ込む可能性 ウクライナ首相 (産経新聞)

[sinatra] Sinatra Path Traversal vulnerability

  • Posted inMODERATE
  • Posted byWpmaster
  • 02/21/201801/27/2023

An issue was discovered in rack-protection/lib/rack/protection/path_traversal.rb in Sinatra 2.x before 2.0.1 on Windows. Path traversal is possible via backslash characters.
References

https://nvd.nist.gov/vuln/detail/CVE-2018-7212
https://github.com/…

[lynx] lynx doesn’t properly sanitize user input and exposes database password to unauthorized users

  • Posted inHIGH
  • Posted byWpmaster
  • 01/25/201801/24/2023

The lynx gem prior to 1.0.0 for Ruby places the configured password on command lines, which allows local users to obtain sensitive information by listing processes.
As of version 1.0.0, lynx no longer supports a –password option. Passwords are only co…

[omniauth-oauth2] omniauth-oauth2 Cross-Site Request Forgery vulnerability

  • Posted inMODERATE
  • Posted byWpmaster
  • 10/25/201701/26/2023

Cross-site request forgery (CSRF) vulnerability in the omniauth-oauth2 gem prior to 1.1.1 for Ruby allows remote attackers to hijack the authentication of users for requests that modify session state.
References

https://nvd.nist.gov/vuln/detail/CVE-20…

[puppet] Puppet allows remote attackers to execute arbitrary Ruby programs from the master via the resource_type service

  • Posted inMODERATE
  • Posted byWpmaster
  • 10/25/201710/05/2022

Unspecified vulnerability in Puppet 2.7.x before 2.7.23 and 3.2.x before 3.2.4, and Puppet Enterprise 2.8.x before 2.8.3 and 3.0.x before 3.0.1, allows remote attackers to execute arbitrary Ruby programs from the master via the resource_type service. …

Posts navigation

Previous Posts 1 … 81,117 81,118 81,119
TechMedia
WordPress theme by componentz

Archives

2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30
Hit enter to search or ESC to close